Go Back   PCMech Forums > Help & Discussion > Networking & Online Security

Need Some Help? Type Your Keywords Here:

Reply
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
Old 07-30-2005, 11:00 AM   #1
Member (9 bit)
 
adrianse's Avatar
 
Join Date: Aug 2002
Location: CA
Posts: 329
HijackThis Log, please review and suggest

Here is my log. My problem is that I have something running pop-ups that I can't seem to find. I have run Spybot, I have run Adaware. I have tried to run housecall, but can't because I'm using Firefox which isn't a supported browser for firefox and IE isn't working for me right now for some unknown reason. I tried to close down the running processes I knew whouldn't be running, but I'm not sure what needs to show up in HT and what doesn't. I did read the HT posting at the top of this forum and tried to follow those rules as best I could.
Thanks for the help, please copy and paste what I need to have removed please.

Logfile of HijackThis v1.99.1
Scan saved at 8:56:02 AM, on 7/30/2005
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\system32\spoolsv.exe
c:\windows\system32\psnhac.exe
C:\WINDOWS\System32\rundll32.exe
C:\WINDOWS\System32\aqpqab.exe
C:\WINDOWS\System32\196_150_ni.exe
C:\Program Files\Microsoft Broadband Networking\MSBNTray.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Default\Local Settings\Temp\Temporary Directory 2 for hijackthis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.msnbc.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R3 - Default URLSearchHook is missing
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
N3 - Netscape 7: user_pref("browser.startup.homepage", "http://www.google.com"); (C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5CProgram%20Files%5CNetscape%5CNetscape%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\prefs.js)
O2 - BHO: CExtension Object - {0019C3E2-DD48-4A6D-ABCD-8D32436323D9} - C:\WINDOWS\cfgmgr52.dll
O2 - BHO: Recommended Hotfix - {0421701D-CF13-4E70-ADF0-45A953E7CB8B} - (no file)
O2 - BHO: (no name) - {0C0FDBE0-90F1-5ADE-E208-385F816BD683} - C:\WINDOWS\Vxpfzmog.dll
O2 - BHO: Search Toolbar BHO Object - {2CF0B992-5EEB-4143-99C0-5297EF71F443} - C:\WINDOWS\System32\stlbdist.DLL
O2 - BHO: NavErrRedir Class - {5D60FF48-95BE-4956-B4C6-6BB168A70310} - C:\PROGRA~1\INCRED~2\BHO\INCFIN~1.DLL
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\windows\downloaded program files\googletoolbar1.dll
O2 - BHO: (no name) - {F33B4B8D-C11F-4B79-B3E0-FC18E0B6C674} - C:\WINDOWS\System32\damdskmgr.dll
O3 - Toolbar: Search - {2CF0B992-5EEB-4143-99C0-5297EF71F444} - C:\WINDOWS\System32\stlbdist.DLL
O3 - Toolbar: (no name) - {30166EF8-D9D2-4F06-8CF4-B4AF72FFB303} - (no file)
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: SuperBar - {F514B64E-3E46-423E-881F-8B784331BBF5} - C:\Program Files\_SUPERBAR\_SUPERBAR.dll
O3 - Toolbar: Search - {0C622B8E-7FDD-FC4F-A8B8-2F79F0AC8A7F} - C:\WINDOWS\Vxpfzmog.dll
O3 - Toolbar: (no name) - {2CDE1A7D-A478-4291-BF31-E1B4C16F92EB} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\windows\downloaded program files\googletoolbar1.dll
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [{2CF0B992-5EEB-4143-99C0-5297EF71F444}] rundll32.exe C:\WINDOWS\System32\stlbdist.DLL,DllRunMain
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM\..\Run: [Explkw] C:\WINDOWS\System32\expup.exe
O4 - HKLM\..\Run: [cfgmgr52] RunDLL32.EXE C:\WINDOWS\cfgmgr52.dll,DllRun
O4 - HKLM\..\Run: [winsync] C:\WINDOWS\System32\aqpqab.exe reg_run
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [csgghaq] c:\windows\system32\psnhac.exe r
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [kbdhu1] C:\WINDOWS\System32\kbdhu1.exe
O4 - HKCU\..\Run: [ipnathlp] C:\WINDOWS\System32\ipnathlp.exe
O4 - HKCU\..\Run: [Mozilla Quick Launch] "C:\Program Files\Netscape\Netscape\Netscp.exe" -turbo
O4 - HKCU\..\Run: [196_150_ni] C:\WINDOWS\System32\196_150_ni.exe
O4 - Global Startup: Microsoft Broadband Networking.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O8 - Extra context menu item: &Google Search - res://c:\windows\downloaded program files\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\windows\downloaded program files\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\windows\downloaded program files\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\windows\downloaded program files\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\windows\downloaded program files\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {1A00C40B-DA85-4aa3-A67F-582D9347EECD} - C:\WINDOWS\System32\TD.exe
O9 - Extra 'Tools' menuitem: Turbo Download - {1A00C40B-DA85-4aa3-A67F-582D9347EECD} - C:\WINDOWS\System32\TD.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\SYSTEM32\SHDOCVW.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra button: Ebates - {6685509E-B47B-4f47-8E16-9A5F3A62F683} - file://C:\Program Files\Ebates_MoeMoneyMaker\Sy350\Tp350\scri350a.htm (file missing) (HKCU)
O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
O12 - Plugin for .mp3: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin3.dll
O16 - DPF: {1D0D9077-3798-49BB-9058-393499174D5D} - file://c:\counter.cab
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe
adrianse is offline   Reply With Quote
Old 07-30-2005, 03:21 PM   #2
Member (10 bit)
 
Join Date: Mar 2004
Location: California
Posts: 936
Hello adrianse

Download, unzip to your desktop CWShredder and run it, then:

1. Click "Check For Update" make sure your version is 2.14

(If an update isn't available, skip to step #4.)

2. Click "Click here to Download the upate".
3. When the new version has been downloaded, click "Save".
4. Click "Fix ->"

===============

Run HiJackThis then:

1. Click "Config..."
2. Click "Misc Tools"
3. Click "Open Process manager"

-

Next, while holding down the CTRL key, locate (if present) and click on (highlight) each of the following:

c:\windows\system32\psnhac.exe
C:\WINDOWS\System32\aqpqab.exe
C:\WINDOWS\System32\196_150_ni.exe

Now double-check and make sure that only those item(s) above are highlighted, then click "Kill process". Now, click "Refresh", check again, and repeat this step if any remain.
===============

Run HiJackThis and click "Scan", then check(tick) the following, if present:


R3 - Default URLSearchHook is missing

F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe

O2 - BHO: CExtension Object - {0019C3E2-DD48-4A6D-ABCD-8D32436323D9} - C:\WINDOWS\cfgmgr52.dll
O2 - BHO: Recommended Hotfix - {0421701D-CF13-4E70-ADF0-45A953E7CB8B} - (no file)
O2 - BHO: (no name) - {0C0FDBE0-90F1-5ADE-E208-385F816BD683} - C:\WINDOWS\Vxpfzmog.dll
O2 - BHO: Search Toolbar BHO Object - {2CF0B992-5EEB-4143-99C0-5297EF71F443} - C:\WINDOWS\System32\stlbdist.DLL
O2 - BHO: NavErrRedir Class - {5D60FF48-95BE-4956-B4C6-6BB168A70310} - C:\PROGRA~1\INCRED~2\BHO\INCFIN~1.DLL
O2 - BHO: (no name) - {F33B4B8D-C11F-4B79-B3E0-FC18E0B6C674} - C:\WINDOWS\System32\damdskmgr.dll

O3 - Toolbar: Search - {2CF0B992-5EEB-4143-99C0-5297EF71F444} - C:\WINDOWS\System32\stlbdist.DLL
O3 - Toolbar: (no name) - {30166EF8-D9D2-4F06-8CF4-B4AF72FFB303} - (no file)
O3 - Toolbar: SuperBar - {F514B64E-3E46-423E-881F-8B784331BBF5} - C:\Program Files\_SUPERBAR\_SUPERBAR.dll
O3 - Toolbar: Search - {0C622B8E-7FDD-FC4F-A8B8-2F79F0AC8A7F} - C:\WINDOWS\Vxpfzmog.dll
O3 - Toolbar: (no name) - {2CDE1A7D-A478-4291-BF31-E1B4C16F92EB} - (no file)

O4 - HKLM\..\Run: [{2CF0B992-5EEB-4143-99C0-5297EF71F444}] rundll32.exe C:\WINDOWS\System32\stlbdist.DLL,DllRunMain
O4 - HKLM\..\Run: [Explkw] C:\WINDOWS\System32\expup.exe
O4 - HKLM\..\Run: [winsync] C:\WINDOWS\System32\aqpqab.exe reg_run
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [csgghaq] c:\windows\system32\psnhac.exe r
O4 - HKCU\..\Run: [kbdhu1] C:\WINDOWS\System32\kbdhu1.exe
O4 - HKCU\..\Run: [ipnathlp] C:\WINDOWS\System32\ipnathlp.exe
O4 - HKCU\..\Run: [196_150_ni] C:\WINDOWS\System32\196_150_ni.exe
O4 - Global Startup: Microsoft Broadband Networking.lnk = ?

O9 - Extra button: Ebates - {6685509E-B47B-4f47-8E16-9A5F3A62F683} - file://C:\Program Files\Ebates_MoeMoneyMaker\Sy350\Tp350\scri350a.htm (file missing) (HKCU)

O16 - DPF: {1D0D9077-3798-49BB-9058-393499174D5D} - file://c:\counter.cab

O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe


Now, with all windows closed except HiJackThis, click "Fix checked".

===============

Locate and delete the following item(s), if present. Make sure your able to view system and hidden files/ folders:

folders...

C:\PROGRA~1\INCRED~2
C:\Program Files\_SUPERBAR

files...

c:\windows\system32\psnhac.exe
C:\WINDOWS\System32\aqpqab.exe
C:\WINDOWS\System32\196_150_ni.exe
C:\WINDOWS\Nail.exe
C:\WINDOWS\cfgmgr52.dll
C:\WINDOWS\Vxpfzmog.dll
C:\WINDOWS\System32\stlbdist.DLL
C:\WINDOWS\System32\damdskmgr.dll
C:\WINDOWS\System32\expup.exe
C:\WINDOWS\System32\kbdhu1.exe
C:\WINDOWS\System32\ipnathlp.exe
C:\WINDOWS\svcproc.exe



===============

reboot

First:
Please download ewido security suite it is a free version of the program.
  1. Install ewido security suite
  2. When installing, under "Additional Options" uncheck..
    • Install background guard
    • Install scan via context menu
  3. Launch ewido, there should be an icon on your desktop, double-click it.
  4. The program will now open to the main screen.
  5. When you run ewido for the first time, you will get a warning "Database could not be found!". Click OK. We will fix this in a moment.
  6. You will need to update ewido to the latest definition files.
    • On the left hand side of the main screen click update.
    • Then click on Start Update.
  7. The update will start and a progress bar will show the updates being installed.
    (the status bar at the bottom will display "Update successful")
If you are having problems with the updater, you can use this link to manually update ewido.
ewido manual updates


Once the updates are installed do the following:
  • Click on scanner
  • Click on Complete System Scan and the scan will begin.
  • NOTE: During some scans with ewido it is finding cases of false positives.**
    • You will need to step through the process of cleaning files one-by-one.
    • If ewido detects a file you KNOW to be legitimate, select none as the action.
    • DO NOT select "Perform action on all infections"
    • If you are unsure of any entry found select none for now.
  • Once the scan has completed, there will be a button located on the bottom of the screen named Save report
  • Click Save report.
  • Save the report .txt file to your desktop.
Now close ewido security suite.

Post back a new log, and let me know how everything goes. attatch the ewido log because i dont know how long it will be

-
Lobos.
Lobos is offline   Reply With Quote
Old 07-30-2005, 11:11 PM   #3
Member (9 bit)
 
adrianse's Avatar
 
Join Date: Aug 2002
Location: CA
Posts: 329
Log Files after fixes

Lobos

I followed everything to the letter, here is the HT log and the ewido log which is very long.

Logfile of HijackThis v1.99.1
Scan saved at 9:10:45 PM, on 7/30/2005
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Documents and Settings\Default\Local Settings\Temp\Temporary Directory 3 for hijackthis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page_bak = http://www.msnbc.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
N3 - Netscape 7: user_pref("browser.startup.homepage", "http://www.google.com"); (C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5CProgram%20Files%5CNetscape%5CNetscape%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\prefs.js)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\windows\downloaded program files\googletoolbar1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\windows\downloaded program files\googletoolbar1.dll
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM\..\Run: [fvrbtfx] c:\windows\system32\fgzosg.exe r
O4 - HKLM\..\Run: [winsync] C:\WINDOWS\System32\aqpqab.exe reg_run
O4 - HKCU\..\Run: [kbdhu1] C:\WINDOWS\System32\kbdhu1.exe
O4 - HKCU\..\Run: [ipnathlp] C:\WINDOWS\System32\ipnathlp.exe
O4 - HKCU\..\Run: [Mozilla Quick Launch] "C:\Program Files\Netscape\Netscape\Netscp.exe" -turbo
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: ZoneAlarm Pro.lnk = C:\Program Files\Zone Labs\ZoneAlarm\zapro.exe
O4 - Global Startup: __delete_on_reboot__puru.exe
O8 - Extra context menu item: &Google Search - res://c:\windows\downloaded program files\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\windows\downloaded program files\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\windows\downloaded program files\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\windows\downloaded program files\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\windows\downloaded program files\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\SYSTEM32\SHDOCVW.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll
O12 - Plugin for .mp3: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin3.dll
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe (file missing)

End










+ Scan result:

HKLM\SOFTWARE\Classes\AppID\BookedSpace.DLL -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\AppID\{0DC5CD7C-F653-4417-AA43-D457BE3A9622} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\BHO.IncrediFindBHO -> Spyware.KeenValue : Cleaned with backup
HKLM\SOFTWARE\Classes\BHO.IncrediFindBHO\CLSID -> Spyware.KeenValue : Cleaned with backup
HKLM\SOFTWARE\Classes\BHO.IncrediFindBHO\CurVer -> Spyware.KeenValue : Cleaned with backup
HKLM\SOFTWARE\Classes\BookedSpace.Extension -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\BookedSpace.Extension\CLSID -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\BookedSpace.Extension\CurVer -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{0000607D-D204-42C7-8E46-216055BF9918} -> Spyware.TwainTech : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{01F44A8A-8C97-4325-A378-76E68DC4AB2E} -> Spyware.IEPlugin : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2CF0B992-5EEB-4143-99C0-5297EF71F444} -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{6EC11407-5B2E-4E25-8BDF-77445B52AB37} -> Spyware.VX2 : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{CEA206E8-8057-4A04-ACE9-FF0D69A92297} -> Spyware.SafeSurfing : Cleaned with backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj -> Spyware.MoneyTree : Cleaned with backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj\CLSID -> Spyware.MoneyTree : Cleaned with backup
HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj\CurVer -> Spyware.MoneyTree : Cleaned with backup
HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{6EC11407-5B2E-4E25-8BDF-77445B52AB37} -> Spyware.VX2 : Cleaned with backup
HKLM\SOFTWARE\Classes\IMIToolbar.PopupWindow -> Spyware.IEPlugin : Cleaned with backup
HKLM\SOFTWARE\Classes\IMIToolbar.PopupWindow\CLSID -> Spyware.IEPlugin : Cleaned with backup
HKLM\SOFTWARE\Classes\IMIToolbar.PopupWindow\CurVer -> Spyware.IEPlugin : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{05080E6B-A88A-4CFD-8C3D-9B2557670B6E} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{4828C95F-C5DB-4AB6-A945-8D8EC44B98A8} -> Spyware.SAHA : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{4E570F74-DEEE-4FCF-B960-FEEFA4B8C6FC} -> Spyware.SAHA : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{8B8F6968-2F24-41E3-B653-E9613226F14D} -> Spyware.KeenValue : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{9388907F-82F5-434D-A941-BB802C6DD7C1} -> Spyware.ISTBar : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{A42C0EF4-1C76-43CC-989F-EADC7E4B755D} -> Spyware.VX2 : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{AA4939C3-DECA-4A48-A454-97CD587C0EF5} -> Spyware.ISTBar : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{EEE4A2E5-9F56-432F-A6ED-F6F625B551E0} -> Dialer.Generic : Cleaned with backup
HKLM\SOFTWARE\Classes\MxTargetDll.MxTargetDllObj -> Spyware.VX2 : Cleaned with backup
HKLM\SOFTWARE\Classes\MxTargetDll.MxTargetDllObj\CLSID -> Spyware.VX2 : Cleaned with backup
HKLM\SOFTWARE\Classes\MxTargetDll.MxTargetDllObj\CurVer -> Spyware.VX2 : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{0DC5CD7C-F653-4417-AA43-D457BE3A9622} -> Spyware.BookedSpace : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{2CF0B992-5EEB-4143-99C0-5297EF71F445} -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{3FA866AC-40D7-4FE6-BABF-78EE854A4325} -> Spyware.VX2 : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{8C752C5E-3C10-4076-AF0A-FFC69FA20D1B} -> Spyware.ISTBar : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{D5E06663-DE78-4A48-BB81-7C9AFF2E49E4} -> Spyware.VX2 : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{DE289BFA-737B-4ABB-A4EC-F8753551B875} -> Spyware.SearchUpgrader : Cleaned with backup
HKLM\SOFTWARE\Classes\Wbho.Band -> Spyware.IEPlugin : Cleaned with backup
HKLM\SOFTWARE\Classes\Wbho.Band\CLSID -> Spyware.IEPlugin : Cleaned with backup
HKLM\SOFTWARE\Classes\Wbho.Band\CurVer -> Spyware.IEPlugin : Cleaned with backup
HKLM\SOFTWARE\Classes\WebCom.WebBar -> Spyware.MediaMotor : Cleaned with backup
HKLM\SOFTWARE\Classes\WebCom.WebBar\CLSID -> Spyware.MediaMotor : Cleaned with backup
HKLM\SOFTWARE\Classes\WebCom.WebBar\CurVer -> Spyware.MediaMotor : Cleaned with backup
HKLM\SOFTWARE\Classes\_ATL_GENERATED.SearchToolbarBHO -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\_ATL_GENERATED.SearchToolbarBHO\CLSID -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\_ATL_GENERATED.SearchToolbarBHO\CurVer -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\_ATL_GENERATED.SearchToolbarName -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\_ATL_GENERATED.SearchToolbarName\CLSID -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Classes\_ATL_GENERATED.SearchToolbarName\CurVer -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\IncrediFind -> Spyware.KeenValue : Cleaned with backup
HKLM\SOFTWARE\IncrediFind\BHO -> Spyware.KeenValue : Cleaned with backup
HKLM\SOFTWARE\IncrediFind\BHO\HomePage -> Spyware.KeenValue : Cleaned with backup
HKLM\SOFTWARE\IncrediFind\BHO\RedirectURLS -> Spyware.KeenValue : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{2CF0B992-5EEB-4143-99C0-5297EF71F444} -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{1A00C40B-DA85-4aa3-A67F-582D9347EECD} -> Spyware.iSearch : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\nCASE -> Spyware.180Solutions : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1A00C40B-DA85-4aa3-A67F-582D9347EECD} -> Spyware.iSearch : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{BC3BBF86-E4EC-4412-9676-8355468B3B05} -> Spyware.Maxspeed : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunWindowsUpdate -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunWindowsUpdate\Active -> Spyware.BrowserAid : Cleaned with backup
HKLM\SOFTWARE\Policies\Avenue Media -> Spyware.InternetOptimizer : Cleaned with backup
HKLM\SOFTWARE\updater -> Spyware.KeenValue : Cleaned with backup
HKLM\SOFTWARE\updater\{8D15A72D-62E0-4733-B057-0A81B4FFEB3D} -> Spyware.KeenValue : Cleaned with backup
HKLM\SOFTWARE\{2CF0B992-5EEB-4143-99C0-5297EF71F444} -> Spyware.BrowserAid : Cleaned with backup
HKLM\SYSTEM\CurrentControlSet\Control\Print\Monitors\ZepMon -> Spyware.BetterInternet : Cleaned with backup
HKU\S-1-5-21-1343024091-1935655697-1957994488-1003\Software\Avenue Media -> Spyware.InternetOptimizer : Cleaned with backup
HKU\S-1-5-21-1343024091-1935655697-1957994488-1003\Software\LocalNRD -> Spyware.BetterInternet : Cleaned with backup
HKU\S-1-5-21-1343024091-1935655697-1957994488-1003\Software\Policies\Avenue Media -> Spyware.InternetOptimizer : Cleaned with backup
HKU\S-1-5-21-1343024091-1935655697-1957994488-1003\Software\PowerScan -> Spyware.PowerScan : Cleaned with backup
HKU\S-1-5-21-1343024091-1935655697-1957994488-1003\Software\{2CF0B992-5EEB-4143-99C0-5297EF71F444} -> Spyware.BrowserAid : Cleaned with backup
[1068] VM_00F70000 -> Adware.BetterInternet : Error during cleaning
[1084] C:\WINDOWS\system32\DrPMon.dll -> Adware.BetterInternet : Cleaned with backup
[1312] c:\windows\system32\fgzosg.exe -> Adware.BetterInternet : Cleaned with backup
[1392] C:\WINDOWS\System32\jakajhk.dll -> TrojanDownloader.Qoologic.n : Cleaned with backup
[1412] C:\Documents and Settings\All Users\Start Menu\Programs\Startup\puru.exe -> TrojanDownloader.Qoologic.n : Cleaned with backup
[252] C:\WINDOWS\System32\jakajhk.dll -> TrojanDownloader.Qoologic.n : Error during cleaning
C:\setup_td.exe/Setup.exe -> Spyware.IEDriver : Error during cleaning
C:\setup_td.exe/Files/3.exe -> Spyware.IEDriver : Error during cleaning
C:\setup_td.exe/Files/5.exe -> TrojanDownloader.Turown : Error during cleaning
C:\setup_td.exe/Files/IEDRIVER.EXE -> TrojanDownloader.Turown.H : Error during cleaning
C:\setup_td.exe/Files/sx.htm -> Spyware.TwainTech : Error during cleaning
C:\setup_td.exe/Files/td.exe -> TrojanDownloader.Turown.a : Error during cleaning
C:\WINDOWS\SYSTEM32\fgzosg.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\SYSTEM32\datadx.dll -> TrojanDownloader.Qoologic.p : Cleaned with backup
C:\WINDOWS\SYSTEM32\conres.cpl -> TrojanDownloader.Qoologic.p : Cleaned with backup
C:\WINDOWS\SYSTEM32\jznzta.exe -> TrojanDownloader.Agent.ae : Cleaned with backup
C:\WINDOWS\SYSTEM32\randreco.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\SYSTEM32\stlbdist.DLL -> Spyware.BadBar : Cleaned with backup
C:\WINDOWS\SYSTEM32\TD.exe -> TrojanDownloader.Turown.a : Cleaned with backup
C:\WINDOWS\SYSTEM32\ms_32.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\SYSTEM32\orero.dll -> TrojanDownloader.Qoologic.n : Cleaned with backup
C:\WINDOWS\SYSTEM32\Cjo9g.exe -> Backdoor.VB.nb : Cleaned with backup
C:\WINDOWS\SYSTEM32\supdate.dll -> TrojanDownloader.Qoologic.p : Cleaned with backup
C:\WINDOWS\SYSTEM32\DrPMon.dll -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\SYSTEM32\ms_bak.tmp.exe -> Backdoor.SdBot : Cleaned with backup
C:\WINDOWS\LastGood\nem219.dll -> TrojanDownloader.Dyfuca : Cleaned with backup
C:\WINDOWS\LastGood\preInsTT.exe -> Spyware.BiSpy : Cleaned with backup
C:\WINDOWS\LastGood\localNRD.dll -> Spyware.BiSpy : Cleaned with backup
C:\WINDOWS\LastGood\preInsln.exe -> Spyware.BiSpy : Cleaned with backup
C:\WINDOWS\LastGood\mxTarget.dll -> Spyware.BiSpy : Cleaned with backup
C:\WINDOWS\LastGood\preInsMt.exe -> Spyware.BiSpy : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\ISTactivex_mainstream.dll -> TrojanDownloader.IstBar.ci : Cleaned with backup
C:\WINDOWS\systb.exe/systb.dll -> Spyware.ImiBar : Error during cleaning
C:\WINDOWS\alchem.exe -> TrojanDownloader.Alchemic : Cleaned with backup
C:\WINDOWS\polmx3.exe -> TrojanDownloader.Agent.ae : Cleaned with backup
C:\WINDOWS\icasoyt.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\svcproc.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\tcukibjn.exe -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\Nail.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\preInsln.exe -> Spyware.BiSpy : Cleaned with backup
C:\WINDOWS\iwcxzookvr.exe -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\preInsMt.exe -> Spyware.BiSpy : Cleaned with backup
C:\WINDOWS\uptodate.EXE -> TrojanDownloader.Braidupdate.c : Cleaned with backup
C:\WINDOWS\wTemp32\Anno 1503_crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\C&C Renegade_crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Diablo 2 Crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Gothic 2 licence.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Battlefield1942_keygen.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Winamp 3.8.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Global DiVX Player 3.0.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\QuickTime_Pro_Crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\KaZaA Lite (New).exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\iMesh 3.7b (beta).exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\iMesh 3.6.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\KaZaA Hack 2.5.0.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Winzip_Crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Winrar_Crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\ICQ hacks.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\XBox Emulator.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\NAV_2003 Crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\GTA3 No CD Crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Virtua Girls.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\ZoneAlarmPro_Crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Microsoft_Products_Crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Windows_XP_Activation_Crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Windows_XP_Keygen.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Windows_2000_Keygen.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Divx_Bundle_Package_Crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Serials_2003.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Divx Bundle +XViD.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Pornpasswords.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\DVD RipPlus 2.3.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\bf1942 crack (new).exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\sof2 Crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Never Winter Nights 4.3 crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\C&C Generals Crack 3.0.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\C&C G patch (new).exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\kazaa 2 ++.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Diet KaZaA.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\pTrack FastTrack Manager 4.5.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\K-Lite Codec_Pack 5.0.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Kazaa Hack v2.1.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Spybot-Search & Destroy.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Nimo Codec Pack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\AVIPreview.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\DirectX_9.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\XviD crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Ad-aware 6.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\KaZaA Preview Extractor.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Kazaa Lite_Privacy_tool.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Daemon Tools.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\KaZaa Lite 1.7.2.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\l0pht crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\ICQ Lite.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\ICQ Pro 2003a beta.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\iMesh.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\AOL_Instant_Messenger.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Download Accelerator Plus 6.0.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Morpheus.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Trillian Pro With Crack.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Grokster.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\WinRAR 3.5b.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\MSN_Messenger 5.0.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Global DiVx Player.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Nero Burning ROM 6.7.8.1.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Nero Burning ROM_Keygen.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\GotoMyPc.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\WS_FTP_LE.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\American Flag Screensaver.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Yahoo Messenger.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Spam Alarm.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\IParmor.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Pop-Up Stopper.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Reg Scrub_XP.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Boost XP.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\RAM Booster.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Free RAM XP PRO.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\KaZooM MP3 Kazaa Accelerator.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Windows Media player 9.5b.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\WinMX.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Microsoft Internet Explorer SP1.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Cursor XP.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\QuickTime.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\GetRight 3.4.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Privacy Defender.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\SWiSH.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\eTrust_EZ_Anti-Virus.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wTemp32\Net Pumper.exe -> Worm.Sddrop.B : Cleaned with backup
C:\WINDOWS\wsem302.dll -> TrojanDownloader.Dyfuca.dc : Cleaned with backup
C:\WINDOWS\preInsTT.exe -> Spyware.BiSpy : Cleaned with backup
C:\WINDOWS\conscorr.exe -> Spyware.ConsCorr : Cleaned with backup
C:\counter.cab/counter.exe -> TrojanDropper.Small.ls : Error during cleaning
C:\Program Files\Common Files\updater\delupdat.exe -> TrojanDownloader.Keenal : Cleaned with backup
C:\Program Files\Common Files\updater\wupdater.exe -> TrojanDownloader.Keenval : Cleaned with backup
C:\Program Files\Common Files\updater\sui.exe -> TrojanDownloader.Keenal : Cleaned with backup
C:\Program Files\180Solutions\sais.exe -> Spyware.180Solutions : Cleaned with backup
C:\Program Files\Power Scan\powerscan.exe -> Spyware.PowerScan : Cleaned with backup
C:\Program Files\Media\Media\StatBlaster.exe -> Spyware.Statblaster : Cleaned with backup
C:\Program Files\Media\Media\StatBlaster.dll -> Spyware.Statblaster : Cleaned with backup
C:\Program Files\Media\Media\updatestats.exe -> Spyware.Statblaster : Cleaned with backup
C:\Program Files\_SUPERBAR\_SUPERBAR.dll -> Spyware.SuperBar : Cleaned with backup
C:\Program Files\Recommended Hotfix - 421701D\v15\RH.DLL -> Spyware.SmartPops : Cleaned with backup
C:\Program Files\Recommended Hotfix - 421701D\v15\RH.exe -> Spyware.SmartPops : Cleaned with backup
C:\Program Files\Internet Optimizer\update\install.exe -> TrojanDownloader.Dyfuca.de : Cleaned with backup
C:\Program Files\Internet Optimizer\install.exe -> TrojanDownloader.Dyfuca.de : Cleaned with backup
C:\Program Files\VVSN\VVSN.exe -> Adware.SaveNow : Cleaned with backup
C:\Documents and Settings\Default User\My Documents\Data\Data\incredifind.exe -> TrojanDownloader.Keenval.e : Cleaned with backup
C:\Documents and Settings\Default User\My Documents\Data\incredifind.exe -> TrojanDownloader.Keenval.e : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\Cookies\default@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\lycos_ss.exe -> Spyware.Sidesearch.a : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\whenu.exe -> Adware.SaveNow : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\powerscan.exe -> Spyware.PowerScan : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\sbinstall.exe -> Spyware.StatBlaster : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\ckz10bfdc2\Setup.exe -> Spyware.IEDriver : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\ckz10bfdc2\Files\3.exe -> Spyware.IEDriver : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\ckz10bfdc2\Files\5.exe -> TrojanDownloader.Turown : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\ckz10bfdc2\Files\IEDRIVER.EXE -> TrojanDownloader.Turown.H : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\ckz10bfdc2\Files\sx.htm -> Spyware.TwainTech : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\ckz10bfdc2\Files\td.exe -> TrojanDownloader.Turown.a : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\istsv_.exe -> TrojanDownloader.IstBar.ga : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\optimize.exe -> TrojanDownloader.Dyfuca.da : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\furYaGs.exe -> TrojanDownloader.IstBar : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\bi146274.exe -> Adware.BetterInternet : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI2250.tmp\localNrd.cab/localNRD.dll -> Spyware.BiSpy : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI2250.tmp\localNrd.cab/preInsln.exe -> Spyware.BiSpy : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI2250.tmp\localNrd.cab/polall1l.exe -> TrojanDownloader.Agent.ae : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI2250.tmp\localNRD.dll -> Spyware.BiSpy : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI2250.tmp\preInsln.exe -> Spyware.BiSpy : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI2250.tmp\polall1l.exe -> TrojanDownloader.Agent.ae : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI566F.tmp\twaintec.cab/preInsTT.exe -> Spyware.BiSpy : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI566F.tmp\preInsTT.exe -> Spyware.BiSpy : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI589A.tmp\twaintec.cab/preInsTT.exe -> Spyware.BiSpy : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI589A.tmp\preInsTT.exe -> Spyware.BiSpy : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\conscorr.cab/conscorr.exe -> Spyware.ConsCorr : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\conscorr.exe -> Spyware.ConsCorr : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI40ED.tmp\wupdt.exe -> TrojanDownloader.Intexp : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\ln_reco.exe -> Adware.BetterInternet : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\alchem.cab/alchem.exe -> TrojanDownloader.Alchemic : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\thnoffer.exe -> Adware.BetterInternet : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\alchem.exe -> TrojanDownloader.Alchemic : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI492A.tmp\mxTarget.cab/mxTarget.dll -> Spyware.BiSpy : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI492A.tmp\mxTarget.cab/preInsMt.exe -> Spyware.BiSpy : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI492A.tmp\mxTarget.dll -> Spyware.BiSpy : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI492A.tmp\preInsMt.exe -> Spyware.BiSpy : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\polmx3.cab/polmx3.exe -> TrojanDownloader.Agent.ae : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\polmx3.exe -> TrojanDownloader.Agent.ae : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI48BA.tmp\polall1r.cab/polall1r.exe -> TrojanDownloader.Agent.ae : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI48BA.tmp\polall1r.exe -> TrojanDownloader.Agent.ae : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\wupdt.exe -> TrojanDownloader.Intexp : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\localNrd.cab/localNRD.dll -> Spyware.BiSpy : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\localNrd.cab/preInsln.exe -> Spyware.BiSpy : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\localNrd.cab/polall1l.exe -> TrojanDownloader.Agent.ae : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI4995.tmp\MMaker2.exe -> Spyware.WebRebates.f : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\jkill.exe -> Spyware.VX2 : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI318E.tmp\polall1r.cab/polall1r.exe -> TrojanDownloader.Agent.ae : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI318E.tmp\polall1r.exe -> TrojanDownloader.Agent.ae : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI2223.tmp\polall1r.cab/polall1r.exe -> TrojanDownloader.Agent.ae : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI2223.tmp\polall1r.exe -> TrojanDownloader.Agent.ae : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI4FA9.tmp\polall1r.cab/polall1r.exe -> TrojanDownloader.Agent.ae : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI4FA9.tmp\polall1r.exe -> TrojanDownloader.Agent.ae : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\satmat.cab/satmat.exe -> TrojanDownloader.Stubby.d : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\satmat.exe -> TrojanDownloader.Stubby.d : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\polall1l.exe -> TrojanDownloader.Agent.ae : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\mxTarget.cab/mxTarget.dll -> Spyware.BiSpy : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\mxTarget.cab/preInsMt.exe -> Spyware.BiSpy : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\mxTarget.dll -> Spyware.BiSpy : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\preInsMt.exe -> Spyware.BiSpy : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\localNRD.dll -> Spyware.BiSpy : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\preInsln.exe -> Spyware.BiSpy : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI1C3C.tmp\mxTarget.cab/mxTarget.dll -> Spyware.BiSpy : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI1C3C.tmp\mxTarget.cab/preInsMt.exe -> Spyware.BiSpy : Error during cleaning
C:\Documents and Settings\Default\Local Settings\Temp\THI1C3C.tmp\mxTarget.dll -> Spyware.BiSpy : Cleaned with backup
C:\Documents and Settings\Default\Local Settings\Temp\THI1C3C.tmp\preInsMt.exe -> Spyware.BiSpy : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@revenue[4].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@findwhat[1].txt -> Spyware.Cookie.Findwhat : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@ad-logics[2].txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@2o7[5].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@casalemedia[2].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@www.shopathomeselect[2].txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@questionmarket[4].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@revenue[2].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@revenue[3].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@ads.x10[1].txt -> Spyware.Cookie.X10 : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@ads.x10[2].txt -> Spyware.Cookie.X10 : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@abetterinternet[3].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@ads.x10[3].txt -> Spyware.Cookie.X10 : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@pointroll[1].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@pro-market[2].txt -> Spyware.Cookie.Pro-market : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@www.myaffiliateprogram[1].txt -> Spyware.Cookie.Myaffiliateprogram : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@trafficmp[1].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@www.shopathomeselect[3].txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@mediatrack.revenue[2].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@revenue[1].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@bs.serving-sys[2].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@trafficvenue[1].txt -> Spyware.Cookie.Trafficvenue : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@ads.trafficvenue[1].txt -> Spyware.Cookie.Trafficvenue : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@questionmarket[2].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@a.as-us.falkag[1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@pointroll[2].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@as-us.falkag[1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@pointroll[4].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@adopt.specificclick[1].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@www.ysbweb[2].txt -> Spyware.Cookie.Ysbweb : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@trafic[1].txt -> Spyware.Cookie.Trafic : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@euniverseads[1].txt -> Spyware.Cookie.Euniverseads : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@www2.enigmasoftwaregroup[2].txt -> Spyware.Cookie.Enigmasoftwaregroup : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@stat.onestat[2].txt -> Spyware.Cookie.Onestat : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@trinityhaven.com.16871.fb.dbbsrv[1].txt -> Spyware.Cookie.Dbbsrv : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@ad-logics[3].txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@bs.serving-sys[3].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@serving-sys[2].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@abetterinternet[2].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@as-us.falkag[3].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@2o7[3].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@ads.pointroll[2].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@install.xxxtoolbar[2].txt -> Spyware.Cookie.Xxxtoolbar : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@overture[3].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkycndzseqaydj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@y-1shz2prbmdj6wvny-1sez2pra2dj6wjloshdjecpaydj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@specificpop[1].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@isg09.casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@-1shz2prbmdj6wvny-1sez2pra2dj6wjny-1jajseqaidj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@ads.pointroll[1].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkyskd5aaoqsdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@install.xxxtoolbar[1].txt -> Spyware.Cookie.Xxxtoolbar : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@casalemedia[3].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@abetterinternet[1].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@edge.ru4[2].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@isg07.casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@ad-logics[1].txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@www.xxxtoolbar[1].txt -> Spyware.Cookie.Xxxtoolbar : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@images.trafficmp[1].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@www2.enigmasoftwaregroup[1].txt -> Spyware.Cookie.Enigmasoftwaregroup : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@abetterinternet[4].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@ad.yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@edge.ru4[1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Documents and Settings\Default\Cookies\default@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.88:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.140:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.141:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.142:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.143:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.147:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.148:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.149:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.150:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.151:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.153:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.154:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.155:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.156:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.157:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.158:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.159:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.160:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.161:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.162:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.163:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.164:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.165:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.175:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.176:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.177:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.179:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.180:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.181:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.194:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.204:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.205:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.214:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.215:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.216:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.217:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.254:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.255:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.266:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.267:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.268:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.272:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.282:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.284:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.285:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.292:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.293:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.294:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.295:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.299:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.300:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.301:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.302:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.303:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.328:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Paycounter : Cleaned with backup
:mozilla.329:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.330:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.342:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.349:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.350:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.351:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.352:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.367:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.382:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.397:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.398:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.399:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.400:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.401:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.402:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.403:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.404:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.405:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.406:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.407:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.408:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.489:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.490:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.491:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.494:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.495:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.496:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.565:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.586:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.599:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.600:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.601:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.636:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.663:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Counted : Cleaned with backup
:mozilla.674:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.675:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.676:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.716:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.717:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.718:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.719:C:\Documents and Settings\Default\Application Data\Mozilla\Firefox\Profiles\y4wzm7km.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.9:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.137:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.143:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.163:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.164:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.165:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.166:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.171:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.172:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.195:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.200:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.201:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.202:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.204:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.205:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.206:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Counted : Cleaned with backup
:mozilla.209:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.214:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.215:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
:mozilla.216:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
:mozilla.217:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.240:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.242:C:\Documents and Settings\Default\Application Data\Mozilla\Profiles\default\880dwlla.slt\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP157\A0076680.dll -> Spyware.BookedSpace : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP157\A0076693.dll -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP157\A0076695.exe -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP157\A0076696.exe -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP157\A0076697.exe -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP161\A0082124.dll -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP161\A0082126.exe -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP161\A0082127.exe -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP161\A0082128.exe -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP161\A0082136.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP161\A0082137.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP161\A0082138.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP162\A0084139.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP162\A0084140.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP162\A0084141.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP162\A0085164.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP162\A0085165.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP162\A0085166.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP163\A0085189.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP163\A0085190.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP163\A0085191.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP164\A0085213.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP164\A0085214.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP164\A0085215.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP164\A0086242.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP164\A0086244.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP164\A0086245.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP164\A0086264.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP164\A0086265.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP164\A0086266.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP165\A0086278.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP165\A0086279.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP165\A0086289.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP165\A0086290.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP165\A0086291.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP165\A0087326.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP165\A0087327.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP165\A0087341.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP165\A0087351.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP165\A0087374.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP165\A0087375.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087395.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087433.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087434.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087462.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087463.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087464.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087485.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087486.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087487.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087516.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087520.dll -> Spyware.BiSpy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087521.dll -> Spyware.BiSpy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087529.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087532.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087543.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087545.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087546.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087547.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087548.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087555.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087575.EXE -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087576.exe -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087578.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP166\A0087579.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0087584.exe -> TrojanDownloader.Qoologic.v : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0087585.DLL -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0087586.exe -> Adware.SAHA : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0087587.DLL -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0087592.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0087594.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088588.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088593.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088597.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088603.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088608.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088609.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088615.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088620.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088626.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088631.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088632.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088634.cpl -> TrojanDownloader.Qoologic.p : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088635.EXE -> TrojanDownloader.Qoologic.u : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088636.exe -> TrojanDownloader.Qoologic.u : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088637.exe -> TrojanDownloader.Qoologic.u : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088638.dll -> TrojanDownloader.Qoologic.t : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088660.DLL -> TrojanDownloader.Qoologic.s : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088665.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088666.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088677.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0088681.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0089677.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0089680.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0090677.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0090687.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0090693.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0090740.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0090741.vxd -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0090742.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0090743.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP167\A0090744.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0090924.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0090926.dll -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0090927.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0090939.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0090945.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0090951.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0091951.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0091956.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0092103.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0092111.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0093117.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0093122.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0093129.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0093133.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0093140.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0093150.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0093154.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP170\A0094149.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094160.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094161.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094167.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094172.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094179.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094184.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094192.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094196.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094204.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094209.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094215.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094220.EXE -> TrojanDownloader.Agent.am : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094221.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094229.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP171\A0094234.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094301.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094302.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094309.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094314.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094320.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094325.exe -> Adware.BetterInternet : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094326.cpl -> TrojanDownloader.Qoologic.p : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094327.exe -> TrojanDownloader.Qoologic.n : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094328.exe -> TrojanDownloader.Qoologic.n : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094329.dll -> TrojanDownloader.Qoologic.n : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094330.DLL -> Spyware.BookedSpace : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094331.dll -> Spyware.SearchBand : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094332.dll -> TrojanDownloader.Keenval.e : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094333.dll -> Spyware.Connector : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094337.DLL -> TrojanDownloader.Qoologic.n : Cleaned with backup
C:\System Volume Information\_restore{E9064D69-868D-4BA5-94E9-15D2285E0E9A}\RP172\A0094342.exe -> Adware.BetterInternet : Cleaned with backup
C:\SaveInstCm.exe -> Adware.SaveNow : Cleaned with backup
adrianse is offline   Reply With Quote
Old 07-30-2005, 11:21 PM   #4
Member (9 bit)
 
adrianse's Avatar
 
Join Date: Aug 2002
Location: CA
Posts: 329
Winfixer 2005 still causing headaches.

By the way,even after all that work, WinFixer 2005 by Vantage software still pops up asking me if I want to install it. There must be some specific fix for this, if you know it lobos, pass it on please.

adrianse
adrianse is offline   Reply With Quote
Old 07-31-2005, 12:20 AM   #5
Member (10 bit)
 
Join Date: Mar 2004
Location: California
Posts: 936
Hello adrianse


you have more than just winfixer

Look at for it in the uninstall but i am getting what we can see right now

you have the Nail/Aurora infection you also have quoologic ,Epolvy trojan and possibly a few other things

we are tackling it some of it but this will take a few or more steps

Be sure to look this solution over before you begin. There are a some item(s) i'm not familar with. If you recognze any, then just omit them from this fix.

===============


Please download Nailfix from here:
http://www.noidea.us/easyfile/file.php?dow...050515010747824
Unzip it to the desktop but please do NOT run it yet.

Download Process Explorer from http://www.sysinternals.com/Utilitie...sExplorer.html

Run Process Explorer and find the Process in the list of Processes:
fgzosg.exe
Select the process and click Process > Suspend.

Then in HijackThis click Config > Misc Tools > Delete a file on reboot...
In the explorer Window select the file c:\windows\system32\fgzosg.exe
When prompted if you want to reboot click YES
Leave Process explorer running with the process suspended.

After the reboot check the following items in HijackThis.
Close all windows except HijackThis and click Fix checked:

O4 - HKLM\..\Run: [fvrbtfx] c:\windows\system32\fgzosg.exe r

===============
Next, please reboot your computer in Safe Mode by doing the following:
1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
3) Instead of Windows loading as normal, a menu should appear
4) Select the first option, to run Windows in Safe Mode.

For additional help in booting into Safe Mode, see the following site:
http://www.pchell.com/support/safemode.shtml

===============

Once in Safe Mode, please double-click on Nailfix.cmd. Your desktop and icons will disappear and reappear, and a window should open and close very quickly --- this is normal.

Then please run Ewido, and run a full scan. clean what ever it finds

Before we begin, let's move HiJackThis to it's own folder; like c:\HJT. When we're done 'cleaning' off your system, we're going to 'flush' the temporary folders which, with HiJackThis in it's current location, we'll lose both the program and the backups it creates. These backups are important in case we need to restore any 'fixed' entry(s) later.

Also move the "Backups" folder, for HiJackThis, if present.

===============

Run HiJackThis and click "Scan", then check(tick) the following, if present:


F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe

O4 - HKLM\..\Run: [winsync] C:\WINDOWS\System32\aqpqab.exe reg_run
O4 - HKCU\..\Run: [kbdhu1] C:\WINDOWS\System32\kbdhu1.exe
O4 - HKCU\..\Run: [ipnathlp] C:\WINDOWS\System32\ipnathlp.exe
O4 - Global Startup: __delete_on_reboot__puru.exe

O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe (file missing)


Now, with all windows closed except HiJackThis, click "Fix checked".

===============
Next, please double click on the My Computer icon on the desktop. Go to Tools | Folder Options, click on the View tab and make sure that Show hidden files and folders is checked. Also uncheck Hide protected operating system files. Now click Apply to all folders, then click Apply then OK.
Locate and delete the following item(s), if present. Make sure your able to view system and hidden files/ folders:

files...

C:\WINDOWS\Nail.exe
c:\windows\system32\fgzosg.exe
C:\WINDOWS\System32\aqpqab.exe
C:\WINDOWS\System32\kbdhu1.exe
C:\WINDOWS\System32\ipnathlp.exe

Search for...

__delete_on_reboot__puru.exe

...using "Start | Search...".

reboot to normal
===============

Posta fresh hijackthis log.


Lobos.
Lobos is offline   Reply With Quote
Reply

Bookmarks

Still Need Help? Type Your Keywords Here:


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are Off
Pingbacks are Off
Refbacks are On



All times are GMT -5. The time now is 05:35 PM.
Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2013, vBulletin Solutions, Inc.
SEO by vBSEO 3.6.1